From e6f4ca2114b4066e552dce920a6e12f578d1ac04 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Tue, 27 Jun 2023 20:14:24 +0000 Subject: [PATCH] fix: package.json & package-lock.json to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JS-SEMVER-3247795 --- package-lock.json | 174 +++++++++++++++++++++++----------------------- package.json | 2 +- 2 files changed, 88 insertions(+), 88 deletions(-) diff --git a/package-lock.json b/package-lock.json index b9a1c95eca..bd48a26c23 100644 --- a/package-lock.json +++ b/package-lock.json @@ -24,7 +24,7 @@ "husky": "^7.0.2", "lint-staged": "^11.1.2", "lockfile-lint": "^4.9.6", - "newrelic": "^10.3.1", + "newrelic": "^10.3.2", "prettier": "^2.3.2", "sinon": "^7.2.3", "tap": "^16.0.1" @@ -3262,32 +3262,32 @@ } }, "node_modules/@newrelic/security-agent": { - "version": "0.1.2", - "resolved": "https://registry.npmjs.org/@newrelic/security-agent/-/security-agent-0.1.2.tgz", - "integrity": "sha512-LmtXwtndUOUm2bZbwa8xfJkbAa/l0EBUHSGTFUp7QIgnRa1S16zgFFvJcir+QicKAWsGEnFJ9A88l0FsmSLy3g==", + "version": "0.1.3", + "resolved": "https://registry.npmjs.org/@newrelic/security-agent/-/security-agent-0.1.3.tgz", + "integrity": "sha512-Wc1D1+zUL/bTHXLgaiLH2gEltg+LTx89O+K2GsLs8qfsYiTWVw76S5rRbkV3iiIM1RU4sQvjcvvSwOQ2YcbpHw==", "dev": true, "dependencies": { "@aws-sdk/client-lambda": "^3.348.0", "axios": "0.21.4", - "check-disk-space": "^3.1.0", - "content-type": "^1.0.4", - "fast-safe-stringify": "^2.0.7", + "check-disk-space": "^3.4.0", + "content-type": "^1.0.5", + "fast-safe-stringify": "^2.1.1", "find-package-json": "^1.2.0", "hash.js": "^1.1.7", - "html-entities": "^1.2.1", + "html-entities": "^2.3.6", "is-invalid-path": "^1.0.2", "js-yaml": "^4.1.0", - "jsonschema": "^1.4.0", + "jsonschema": "^1.4.1", "lodash": "^4.17.21", - "log4js": "^6.0.0", + "log4js": "^6.9.1", "pretty-bytes": "^5.6.0", - "request-ip": "^2.1.3", + "request-ip": "^3.3.0", "ringbufferjs": "^2.0.0", - "semver": "^6.3.0", + "semver": "^7.5.3", "sync-request": "^6.1.0", "unescape": "^1.0.1", "unescape-js": "^1.1.4", - "uuid": "^3.4.0", + "uuid": "^9.0.0", "ws": "^7.5.9" } }, @@ -3310,22 +3310,27 @@ } }, "node_modules/@newrelic/security-agent/node_modules/semver": { - "version": "6.3.0", - "resolved": "https://registry.npmjs.org/semver/-/semver-6.3.0.tgz", - "integrity": "sha512-b39TBaTSfV6yBrapU89p5fKekE2m/NwnDocOVruQFS1/veMgdzuPcnOM34M6CwxW8jH/lxEa5rBoDeUwu5HHTw==", + "version": "7.5.3", + "resolved": "https://registry.npmjs.org/semver/-/semver-7.5.3.tgz", + "integrity": "sha512-QBlUtyVk/5EeHbi7X0fw6liDZc7BBmEaSYn01fMU1OUYbf6GPsbTtd8WmnqbI20SeycoHSeiybkE/q1Q+qlThQ==", "dev": true, + "dependencies": { + "lru-cache": "^6.0.0" + }, "bin": { "semver": "bin/semver.js" + }, + "engines": { + "node": ">=10" } }, "node_modules/@newrelic/security-agent/node_modules/uuid": { - "version": "3.4.0", - "resolved": "https://registry.npmjs.org/uuid/-/uuid-3.4.0.tgz", - "integrity": "sha512-HjSDRw6gZE5JMggctHBcjVak08+KEVhSIiDzFnT9S9aegmp85S/bReBVTb4QTFaRNptJ9kuYaNhnbNEOkbKb/A==", - "deprecated": "Please upgrade to version 7 or higher. Older versions may use Math.random() in certain circumstances, which is known to be problematic. See https://v8.dev/blog/math-random for details.", + "version": "9.0.0", + "resolved": "https://registry.npmjs.org/uuid/-/uuid-9.0.0.tgz", + "integrity": "sha512-MXcSTerfPa4uqyzStbRoTgt5XIe3x5+42+q1sDuy3R5MDk66URdLMOZe5aPX/SQd+kuYAh0FdP/pO28IkQyTeg==", "dev": true, "bin": { - "uuid": "bin/uuid" + "uuid": "dist/bin/uuid" } }, "node_modules/@newrelic/superagent": { @@ -6499,9 +6504,9 @@ } }, "node_modules/content-type": { - "version": "1.0.4", - "resolved": "https://registry.npmjs.org/content-type/-/content-type-1.0.4.tgz", - "integrity": "sha512-hIP3EEPs8tB9AT1L+NUqtwOAps4mk2Zob89MWXMHjHWg9milF/j4osnnQLXBCBFBk/tvIG/tUc9mOUJiPBhPXA==", + "version": "1.0.5", + "resolved": "https://registry.npmjs.org/content-type/-/content-type-1.0.5.tgz", + "integrity": "sha512-nTjqfcBFEipKdXCv4YDQWCfmcLZKm81ldF0pAopTvyrFGVbcR6P/VAAd5G7N+0tTr8QqiU0tFadD6FK4NtJwOA==", "dev": true, "engines": { "node": ">= 0.6" @@ -7800,10 +7805,20 @@ "dev": true }, "node_modules/html-entities": { - "version": "1.4.0", - "resolved": "https://registry.npmjs.org/html-entities/-/html-entities-1.4.0.tgz", - "integrity": "sha512-8nxjcBcd8wovbeKx7h3wTji4e6+rhaVuPNpMqwWgnHh+N9ToqsCs6XztWRBPQ+UtzsoMAdKZtUENoVzU/EMtZA==", - "dev": true + "version": "2.4.0", + "resolved": "https://registry.npmjs.org/html-entities/-/html-entities-2.4.0.tgz", + "integrity": "sha512-igBTJcNNNhvZFRtm8uA6xMY6xYleeDwn3PeBCkDz7tHttv4F2hsDI2aPgNERWzvRcNYHNT3ymRaQzllmXj4YsQ==", + "dev": true, + "funding": [ + { + "type": "github", + "url": "https://github.com/sponsors/mdevils" + }, + { + "type": "patreon", + "url": "https://patreon.com/mdevils" + } + ] }, "node_modules/html-escaper": { "version": "2.0.2", @@ -7969,12 +7984,6 @@ "integrity": "sha512-k/vGaX4/Yla3WzyMCvTQOXYeIHvqOKtnqBduzTHpzpQZzAskKMhZ2K+EnBiSM9zGSoIFeMpXKxa4dYeZIQqewQ==", "dev": true }, - "node_modules/is_js": { - "version": "0.9.0", - "resolved": "https://registry.npmjs.org/is_js/-/is_js-0.9.0.tgz", - "integrity": "sha512-8Y5EHSH+TonfUHX2g3pMJljdbGavg55q4jmHzghJCdqYDbdNROC8uw/YFQwIRCRqRJT1EY3pJefz+kglw+o7sg==", - "dev": true - }, "node_modules/is-arguments": { "version": "1.1.1", "resolved": "https://registry.npmjs.org/is-arguments/-/is-arguments-1.1.1.tgz", @@ -9192,9 +9201,9 @@ } }, "node_modules/newrelic": { - "version": "10.3.1", - "resolved": "https://registry.npmjs.org/newrelic/-/newrelic-10.3.1.tgz", - "integrity": "sha512-Aq9M0zPzKCtA05UbbWhLmHohcV0bC+fq5b8DMEpalS8WLlENAocG0tS85b938QUg3eOH8I/fkmZ8pQw63y0HrQ==", + "version": "10.3.2", + "resolved": "https://registry.npmjs.org/newrelic/-/newrelic-10.3.2.tgz", + "integrity": "sha512-hSjn1/hwMgmjtfavgWRMgdMqIaZGpCh9/8ixVbcPfFyLfnNxJI4D2mwCTY4EjnO7dTNfSkiAxfAIXsUv4FibZw==", "dev": true, "dependencies": { "@grpc/grpc-js": "^1.8.10", @@ -9202,7 +9211,7 @@ "@mrleebo/prisma-ast": "^0.5.2", "@newrelic/aws-sdk": "^5.0.2", "@newrelic/koa": "^7.1.1", - "@newrelic/security-agent": "0.1.2", + "@newrelic/security-agent": "0.1.3", "@newrelic/superagent": "^6.0.0", "@tyriar/fibonacci-heap": "^2.0.7", "concat-stream": "^2.0.0", @@ -10330,13 +10339,10 @@ } }, "node_modules/request-ip": { - "version": "2.2.0", - "resolved": "https://registry.npmjs.org/request-ip/-/request-ip-2.2.0.tgz", - "integrity": "sha512-Hn4zUAr+XHbUs2RrfHur62t7+UhvtevqK32ordFewguEfNHUkhSdYgbG7PDGmXZEzqEXll9bei0+VMe6gkmuUQ==", - "dev": true, - "dependencies": { - "is_js": "^0.9.0" - } + "version": "3.3.0", + "resolved": "https://registry.npmjs.org/request-ip/-/request-ip-3.3.0.tgz", + "integrity": "sha512-cA6Xh6e0fDBBBwH77SLJaJPBmD3nWVAcF9/XAcsrIHdjhFzFiB5aNQFytdjCGPezU3ROwrR11IddKAM08vohxA==", + "dev": true }, "node_modules/require-directory": { "version": "2.1.1", @@ -16377,32 +16383,32 @@ } }, "@newrelic/security-agent": { - "version": "0.1.2", - "resolved": "https://registry.npmjs.org/@newrelic/security-agent/-/security-agent-0.1.2.tgz", - "integrity": "sha512-LmtXwtndUOUm2bZbwa8xfJkbAa/l0EBUHSGTFUp7QIgnRa1S16zgFFvJcir+QicKAWsGEnFJ9A88l0FsmSLy3g==", + "version": "0.1.3", + "resolved": "https://registry.npmjs.org/@newrelic/security-agent/-/security-agent-0.1.3.tgz", + "integrity": "sha512-Wc1D1+zUL/bTHXLgaiLH2gEltg+LTx89O+K2GsLs8qfsYiTWVw76S5rRbkV3iiIM1RU4sQvjcvvSwOQ2YcbpHw==", "dev": true, "requires": { "@aws-sdk/client-lambda": "^3.348.0", "axios": "0.21.4", - "check-disk-space": "^3.1.0", - "content-type": "^1.0.4", - "fast-safe-stringify": "^2.0.7", + "check-disk-space": "^3.4.0", + "content-type": "^1.0.5", + "fast-safe-stringify": "^2.1.1", "find-package-json": "^1.2.0", "hash.js": "^1.1.7", - "html-entities": "^1.2.1", + "html-entities": "^2.3.6", "is-invalid-path": "^1.0.2", "js-yaml": "^4.1.0", - "jsonschema": "^1.4.0", + "jsonschema": "^1.4.1", "lodash": "^4.17.21", - "log4js": "^6.0.0", + "log4js": "^6.9.1", "pretty-bytes": "^5.6.0", - "request-ip": "^2.1.3", + "request-ip": "^3.3.0", "ringbufferjs": "^2.0.0", - "semver": "^6.3.0", + "semver": "^7.5.3", "sync-request": "^6.1.0", "unescape": "^1.0.1", "unescape-js": "^1.1.4", - "uuid": "^3.4.0", + "uuid": "^9.0.0", "ws": "^7.5.9" }, "dependencies": { @@ -16422,15 +16428,18 @@ } }, "semver": { - "version": "6.3.0", - "resolved": "https://registry.npmjs.org/semver/-/semver-6.3.0.tgz", - "integrity": "sha512-b39TBaTSfV6yBrapU89p5fKekE2m/NwnDocOVruQFS1/veMgdzuPcnOM34M6CwxW8jH/lxEa5rBoDeUwu5HHTw==", - "dev": true + "version": "7.5.3", + "resolved": "https://registry.npmjs.org/semver/-/semver-7.5.3.tgz", + "integrity": "sha512-QBlUtyVk/5EeHbi7X0fw6liDZc7BBmEaSYn01fMU1OUYbf6GPsbTtd8WmnqbI20SeycoHSeiybkE/q1Q+qlThQ==", + "dev": true, + "requires": { + "lru-cache": "^6.0.0" + } }, "uuid": { - "version": "3.4.0", - "resolved": "https://registry.npmjs.org/uuid/-/uuid-3.4.0.tgz", - "integrity": "sha512-HjSDRw6gZE5JMggctHBcjVak08+KEVhSIiDzFnT9S9aegmp85S/bReBVTb4QTFaRNptJ9kuYaNhnbNEOkbKb/A==", + "version": "9.0.0", + "resolved": "https://registry.npmjs.org/uuid/-/uuid-9.0.0.tgz", + "integrity": "sha512-MXcSTerfPa4uqyzStbRoTgt5XIe3x5+42+q1sDuy3R5MDk66URdLMOZe5aPX/SQd+kuYAh0FdP/pO28IkQyTeg==", "dev": true } } @@ -18880,9 +18889,9 @@ } }, "content-type": { - "version": "1.0.4", - "resolved": "https://registry.npmjs.org/content-type/-/content-type-1.0.4.tgz", - "integrity": "sha512-hIP3EEPs8tB9AT1L+NUqtwOAps4mk2Zob89MWXMHjHWg9milF/j4osnnQLXBCBFBk/tvIG/tUc9mOUJiPBhPXA==", + "version": "1.0.5", + "resolved": "https://registry.npmjs.org/content-type/-/content-type-1.0.5.tgz", + "integrity": "sha512-nTjqfcBFEipKdXCv4YDQWCfmcLZKm81ldF0pAopTvyrFGVbcR6P/VAAd5G7N+0tTr8QqiU0tFadD6FK4NtJwOA==", "dev": true }, "convert-source-map": { @@ -19837,9 +19846,9 @@ "dev": true }, "html-entities": { - "version": "1.4.0", - "resolved": "https://registry.npmjs.org/html-entities/-/html-entities-1.4.0.tgz", - "integrity": "sha512-8nxjcBcd8wovbeKx7h3wTji4e6+rhaVuPNpMqwWgnHh+N9ToqsCs6XztWRBPQ+UtzsoMAdKZtUENoVzU/EMtZA==", + "version": "2.4.0", + "resolved": "https://registry.npmjs.org/html-entities/-/html-entities-2.4.0.tgz", + "integrity": "sha512-igBTJcNNNhvZFRtm8uA6xMY6xYleeDwn3PeBCkDz7tHttv4F2hsDI2aPgNERWzvRcNYHNT3ymRaQzllmXj4YsQ==", "dev": true }, "html-escaper": { @@ -19969,12 +19978,6 @@ "integrity": "sha512-k/vGaX4/Yla3WzyMCvTQOXYeIHvqOKtnqBduzTHpzpQZzAskKMhZ2K+EnBiSM9zGSoIFeMpXKxa4dYeZIQqewQ==", "dev": true }, - "is_js": { - "version": "0.9.0", - "resolved": "https://registry.npmjs.org/is_js/-/is_js-0.9.0.tgz", - "integrity": "sha512-8Y5EHSH+TonfUHX2g3pMJljdbGavg55q4jmHzghJCdqYDbdNROC8uw/YFQwIRCRqRJT1EY3pJefz+kglw+o7sg==", - "dev": true - }, "is-arguments": { "version": "1.1.1", "resolved": "https://registry.npmjs.org/is-arguments/-/is-arguments-1.1.1.tgz", @@ -20912,9 +20915,9 @@ "dev": true }, "newrelic": { - "version": "10.3.1", - "resolved": "https://registry.npmjs.org/newrelic/-/newrelic-10.3.1.tgz", - "integrity": "sha512-Aq9M0zPzKCtA05UbbWhLmHohcV0bC+fq5b8DMEpalS8WLlENAocG0tS85b938QUg3eOH8I/fkmZ8pQw63y0HrQ==", + "version": "10.3.2", + "resolved": "https://registry.npmjs.org/newrelic/-/newrelic-10.3.2.tgz", + "integrity": "sha512-hSjn1/hwMgmjtfavgWRMgdMqIaZGpCh9/8ixVbcPfFyLfnNxJI4D2mwCTY4EjnO7dTNfSkiAxfAIXsUv4FibZw==", "dev": true, "requires": { "@contrast/fn-inspect": "^3.3.0", @@ -20924,7 +20927,7 @@ "@newrelic/aws-sdk": "^5.0.2", "@newrelic/koa": "^7.1.1", "@newrelic/native-metrics": "^9.0.1", - "@newrelic/security-agent": "0.1.2", + "@newrelic/security-agent": "0.1.3", "@newrelic/superagent": "^6.0.0", "@tyriar/fibonacci-heap": "^2.0.7", "concat-stream": "^2.0.0", @@ -21799,13 +21802,10 @@ } }, "request-ip": { - "version": "2.2.0", - "resolved": "https://registry.npmjs.org/request-ip/-/request-ip-2.2.0.tgz", - "integrity": "sha512-Hn4zUAr+XHbUs2RrfHur62t7+UhvtevqK32ordFewguEfNHUkhSdYgbG7PDGmXZEzqEXll9bei0+VMe6gkmuUQ==", - "dev": true, - "requires": { - "is_js": "^0.9.0" - } + "version": "3.3.0", + "resolved": "https://registry.npmjs.org/request-ip/-/request-ip-3.3.0.tgz", + "integrity": "sha512-cA6Xh6e0fDBBBwH77SLJaJPBmD3nWVAcF9/XAcsrIHdjhFzFiB5aNQFytdjCGPezU3ROwrR11IddKAM08vohxA==", + "dev": true }, "require-directory": { "version": "2.1.1", diff --git a/package.json b/package.json index efad0f9f12..77752ae981 100644 --- a/package.json +++ b/package.json @@ -41,7 +41,7 @@ "husky": "^7.0.2", "lint-staged": "^11.1.2", "lockfile-lint": "^4.9.6", - "newrelic": "^10.3.1", + "newrelic": "^10.3.2", "prettier": "^2.3.2", "sinon": "^7.2.3", "tap": "^16.0.1"